Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 22-09-2021 02 Exécuté par Pc (administrateur) sur DESKTOP-TLVDV52 (24-09-2021 17:42:33) Exécuté depuis C:\Users\Pc\Desktop Profils chargés: Pc Platform: Windows 10 Pro Version 21H1 19043.1237 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\acrocef_1\RdrCEF.exe <6> (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe <2> (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Driver Updater\DriverUpdSvc.exe (BGO Software Engineering Ltd -> BGO Software Engineering Ltd) C:\Program Files\BGO Software Engineering\GSpace Discover\GSpace Discover App.exe (BGO Software Engineering Ltd -> BGO Software Engineering Ltd) C:\Program Files\BGO Software Engineering\GSpace Discover\GSpace Discover.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler64.exe (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2108.25001.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.21061.10121.0_x64__8wekyb3d8bbwe\Music.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCopyAccelerator.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5be8de9f3373beaf\Display.NvContainer\NVDisplay.Container.exe <2> (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Telegram FZ-LLC -> Telegram FZ-LLC) C:\Users\Pc\AppData\Roaming\Telegram Desktop\Telegram.exe (Wargaming.net Limited -> Wargaming.net) C:\Games\Wargaming.net\GameCenter\dlls\wgc_renderer_host.exe <3> (Wargaming.net Limited -> Wargaming.net) C:\Games\Wargaming.net\GameCenter\wargamingerrormonitor.exe (Wargaming.net Limited -> Wargaming.net) C:\Games\Wargaming.net\GameCenter\wgc.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [DriverUpdUI.exe] => C:\Program Files\AVG\Driver Updater\DriverUpdUI.exe [4003640 2021-09-20] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-02-04] (Adobe Inc. -> ) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [779504 2021-07-11] (Adobe Inc. -> Adobe Inc.) HKU\S-1-5-21-246948223-176472420-4045224449-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation) HKU\S-1-5-21-246948223-176472420-4045224449-1001\...\Run: [iVCam] => C:\Program Files\e2eSoft\iVCam\iVCam.exe [4831120 2021-04-09] (Shanghai Yitu Information Technology Co., Ltd. -> ) HKU\S-1-5-21-246948223-176472420-4045224449-1001\...\Run: [Gaijin.Net Updater] => C:\Users\Pc\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2374376 2020-12-03] (Gaijin Network LTD -> Gaijin) HKU\S-1-5-21-246948223-176472420-4045224449-1001\...\Run: [Wargaming.net Game Center] => C:\Games\Wargaming.net\GameCenter\wgc.exe [2147776 2021-09-16] (Wargaming.net Limited -> Wargaming.net) HKU\S-1-5-21-246948223-176472420-4045224449-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35093120 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\93.0.4577.82\Installer\chrmstp.exe [2021-09-15] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2021-09-09] (Adobe Inc. -> Adobe Systems, Inc.) GroupPolicy: Restriction ? <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {00CA40B6-A278-4583-8180-582686C724D5} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {029FCF72-401D-4DFF-A610-08FC6DAA9127} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {02DFE65C-3A24-4F2F-B596-CD254173742B} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1362107E-D495-4721-B5B2-D6C183A1D9A4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-21] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {14F642D6-7548-4FAC-B9CC-FBBE39835B9C} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [680888 2021-09-10] (Mozilla Corporation -> Mozilla Foundation) Task: {15699BED-E68F-4919-B368-3F51003FE162} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1815352 2021-09-21] (AVG Technologies USA, LLC -> AVG Technologies) Task: {2392CA3C-9B4A-4086-8AFE-723E6D4EAF1B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\AdobeGCInvoker-1.0" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Antivirus Emergency Update" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Browser Heartbeat Task (Hourly)" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleaner Browser Heartbeat Task (Logon)" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\CCleanerSkipUAC - Pc" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\CCleanerUpdateTaskMachineCore" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\CCleanerUpdateTaskMachineUA" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\Intel PTT EK Recertification" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(16): schtasks.exe -> /Change /TN "\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(17): schtasks.exe -> /Change /TN "\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(18): schtasks.exe -> /Change /TN "\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(19): schtasks.exe -> /Change /TN "\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(20): schtasks.exe -> /Change /TN "\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(21): schtasks.exe -> /Change /TN "\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(22): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(23): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(24): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(25): schtasks.exe -> /Change /TN "\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(26): schtasks.exe -> /Change /TN "\OneDrive Standalone Update Task-S-1-5-21-246948223-176472420-4045224449-1001" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(27): schtasks.exe -> /Change /TN "\User_Feed_Synchronization-{8491BED0-976D-4668-A68C-091E9A0FBA68}" /ENABLE Task: {434DC00E-F55F-457C-9057-0FD01BFBB246} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(28): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE Task: {48193D2A-3AF2-4432-A69D-6AFF3561F931} - System32\Tasks\CCleanerSkipUAC - Pc => C:\Program Files\CCleaner\CCleaner.exe [29155968 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd) Task: {51F9C3A6-E6F1-42FB-9CEA-7BCAB80010C5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.) Task: {589D02EB-7247-4003-8FE6-9424228D66B4} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe [6412600 2021-09-16] (AVG Technologies USA, LLC -> AVG Technologies) Task: {5A37122F-0042-42B9-B6D6-C80C59F740C0} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-09-29] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {5A415870-DD26-4DD0-A0F2-0EFC59D22E0C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-11] (Google LLC -> Google LLC) Task: {5DC3B664-6E29-45B0-AEAB-A5B454256CE7} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {5EC91423-8DC2-4608-A4AE-4496FDDEB086} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-21] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {977F61E2-9F77-4BE7-BB3C-EE772413C256} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-09-10] (Piriform Software Ltd -> Piriform) Task: {9C606532-4610-47CC-A76A-5A2B234E34F2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-11] (Google LLC -> Google LLC) Task: {A1EDDE17-74A0-495A-B055-68FE619E8959} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A6A0097E-57C0-49DD-818B-FB95A046F89F} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-09-29] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {ADFF002C-7923-4B37-8DBF-78492E0D7245} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe Task: {B42F3F1B-1928-430D-9372-E8D2160864CA} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3336560 2021-04-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B8E2186F-2604-401C-9A90-2F8413CF6508} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-21] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CB8B6B38-1CC7-44E3-8723-7D9BE364E3F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-21] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CF55CF36-09A6-422D-A65C-D65BD925E22C} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1260400 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D4074A2E-9B5D-4E32-9C7A-D2161F322E56} - System32\Tasks\AVG\AVG Driver Updater BugReport => C:\Program Files\AVG\Driver Updater\AvBugReport.exe [4754744 2021-09-20] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) -> --send "dumps|report" --silent --product 149 --programpath "C:\Program Files\AVG\Driver Updater\Setup\.." --configpath "C:\Program Files\AVG\Driver Updater\Setup" --path "C:\ProgramData\AVG\Driver Updater\log" --path "C:\ProgramData\AVG\Icarus\Logs" --guid 6a95495e-6755-48bb-8c64-d2ca31459abb Task: {DEEF50CD-B673-4D51-8EE0-FAA3BE59DD86} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E143779A-938E-4943-BCB0-C318944D9A14} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {F87E0462-28DC-4585-B222-9A67C816E35A} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905584 2021-04-07] (NVIDIA Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Intel PTT EK Recertification.job => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{21b07a30-8c2f-4e02-a6bd-d9b44cd02817}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{e154e1b3-466b-4712-b508-e3848bb71cf8}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Pc\AppData\Local\Microsoft\Edge\User Data\Default [2021-09-24] Edge Extension: (Outlook) - C:\Users\Pc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-12-16] Edge Extension: (Word) - C:\Users\Pc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-12-16] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Pc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-09-08] Edge Extension: (Excel) - C:\Users\Pc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-12-16] Edge Extension: (PowerPoint) - C:\Users\Pc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-12-16] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: j2m1w953.default FF ProfilePath: C:\Users\Pc\AppData\Roaming\Mozilla\Firefox\Profiles\j2m1w953.default [2020-12-11] FF ProfilePath: C:\Users\Pc\AppData\Roaming\Mozilla\Firefox\Profiles\ik7hv28q.default-release [2021-09-24] FF Homepage: Mozilla\Firefox\Profiles\ik7hv28q.default-release -> www.duckduckgo.com/ FF Notifications: Mozilla\Firefox\Profiles\ik7hv28q.default-release -> hxxps://www.instagram.com; hxxps://www.youtube.com FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\Pc\AppData\Roaming\Mozilla\Firefox\Profiles\ik7hv28q.default-release\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2021-09-03] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-07-11] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL [2011-04-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-09-09] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-07-11] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default [2021-09-22] CHR Extension: (Slides) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-12-16] CHR Extension: (Docs) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-12-16] CHR Extension: (Google Drive) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-12-16] CHR Extension: (YouTube) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-12-16] CHR Extension: (Sheets) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-12-16] CHR Extension: (Google Docs hors connexion) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-07-15] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-07-15] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-07-15] CHR Extension: (Gmail) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-16] CHR Extension: (Chrome Media Router) - C:\Users\Pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-07-15] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) "GSpace Discover" => service a été déverrouillé. <==== ATTENTION R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [842480 2021-07-11] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3779840 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3547904 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-02-25] (BattlEye Innovations e.K. -> ) R2 DriverUpdSvc; C:\Program Files\AVG\Driver Updater\DriverUpdSvc.exe [6562104 2021-09-20] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2020-07-15] (EasyAntiCheat Oy -> Epic Games, Inc) R2 GSpace Discover; C:\Program Files\BGO Software Engineering\GSpace Discover\GSpace Discover.exe [2809912 2021-09-14] (BGO Software Engineering Ltd -> BGO Software Engineering Ltd) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [285192 2020-12-29] (HP Inc. -> HP Inc.) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7785656 2021-09-23] (Malwarebytes Inc -> Malwarebytes) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5394872 2021-09-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12720144 2020-11-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2108.7-0\NisSrv.exe [2772856 2021-09-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2108.7-0\MsMpEng.exe [136640 2021-09-21] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5be8de9f3373beaf\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5be8de9f3373beaf\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] R3 e2esoft_ivcamaudio_simple; C:\WINDOWS\system32\drivers\iVCamAud.sys [255464 2020-11-04] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft) R3 iVCam; C:\WINDOWS\system32\DRIVERS\iVCam.sys [1090536 2020-11-02] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210344 2021-09-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-09-23] (Malwarebytes Inc -> Malwarebytes) R3 Sftfs; C:\WINDOWS\system32\DRIVERS\Sftfswin7.sys [767648 2014-10-08] (Microsoft Corporation -> Microsoft Corporation) R3 Sftplay; C:\WINDOWS\system32\DRIVERS\Sftplaywin7.sys [273576 2014-10-08] (Microsoft Corporation -> Microsoft Corporation) R3 Sftredir; C:\WINDOWS\System32\DRIVERS\Sftredirwin7.sys [29864 2014-10-08] (Microsoft Corporation -> Microsoft Corporation) R3 Sftvol; C:\WINDOWS\system32\DRIVERS\Sftvolwin7.sys [23208 2014-10-08] (Microsoft Corporation -> Microsoft Corporation) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2020-04-15] (Apple, Inc.) [Fichier non signé] S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2021-09-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [433384 2021-09-21] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86264 2021-09-21] (Microsoft Windows -> Microsoft Corporation) S1 TASANTIVIRUSKD; \??\C:\Program Files (x86)\Digital Communications\SAntivirus\TASAntivirusKD.sys [X] <==== ATTENTION ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-09-24 17:42 - 2021-09-24 17:42 - 000030954 _____ C:\Users\Pc\Desktop\FRST.txt 2021-09-24 17:41 - 2021-09-24 17:41 - 000000000 ____D C:\Users\Pc\Downloads\FRST-OlderVersion 2021-09-24 17:38 - 2021-09-24 17:38 - 000305755 _____ C:\Users\Pc\Desktop\ZHPDiag.txt 2021-09-24 17:33 - 2021-09-24 17:33 - 000000862 _____ C:\Users\Pc\Desktop\ZHPSuite.lnk 2021-09-24 16:52 - 2021-09-24 16:52 - 034486688 _____ (Telegram FZ-LLC ) C:\Users\Pc\Downloads\tsetup-x64.3.1.1.exe 2021-09-23 19:10 - 2021-09-23 19:10 - 000001529 _____ C:\Users\Pc\Desktop\MBAM.txt 2021-09-23 18:04 - 2021-09-23 18:04 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-09-23 18:04 - 2021-09-23 18:04 - 000210344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-09-23 18:04 - 2021-09-23 18:04 - 000160176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2021-09-23 18:04 - 2021-09-23 18:04 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-09-23 18:04 - 2021-09-23 18:04 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-09-23 18:04 - 2021-09-23 18:04 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-09-23 18:04 - 2021-09-23 18:04 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-09-23 18:02 - 2021-09-23 18:02 - 002101944 _____ (Malwarebytes) C:\Users\Pc\Downloads\MBSetup(1).exe 2021-09-23 17:03 - 2021-09-23 17:03 - 000001875 _____ C:\Users\Pc\Desktop\AdwCleaner[C01].txt 2021-09-23 17:01 - 2021-09-23 17:03 - 000219770 _____ C:\WINDOWS\ntbtlog.txt 2021-09-22 15:51 - 2021-09-22 15:51 - 002101944 _____ (Malwarebytes) C:\Users\Pc\Downloads\MBSetup.exe 2021-09-22 15:47 - 2021-09-22 15:48 - 000000000 ____D C:\AdwCleaner 2021-09-22 15:47 - 2021-09-22 15:47 - 008553680 _____ (Malwarebytes) C:\Users\Pc\Desktop\adwcleaner_8.3.0.exe 2021-09-22 15:32 - 2021-09-22 15:32 - 003289752 _____ (Nicolas Coolman) C:\Users\Pc\Downloads\ZHPCleaner.exe 2021-09-22 15:32 - 2021-09-22 15:32 - 000000872 _____ C:\Users\Pc\Desktop\ZHPCleaner.lnk 2021-09-21 21:33 - 2021-09-24 15:57 - 000000000 ____D C:\Program Files\CCleaner 2021-09-21 21:33 - 2021-09-21 21:33 - 036181616 _____ (Piriform Software Ltd) C:\Users\Pc\Downloads\ccsetup585.exe 2021-09-21 21:33 - 2021-09-21 21:33 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-09-21 21:33 - 2021-09-21 21:33 - 000002892 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Pc 2021-09-21 21:33 - 2021-09-21 21:33 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2021-09-21 21:33 - 2021-09-21 21:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-09-21 21:29 - 2021-09-21 21:29 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2021-09-21 20:49 - 2021-09-21 19:54 - 000000000 ____D C:\Windows.old 2021-09-21 20:48 - 2021-09-21 20:49 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2021-09-21 20:47 - 2021-09-21 20:48 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2021-09-21 20:47 - 2021-09-21 20:47 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2021-09-21 20:45 - 2021-09-21 20:45 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll 2021-09-21 20:45 - 2021-09-21 20:45 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll 2021-09-21 20:45 - 2021-09-21 20:45 - 000153600 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll 2021-09-21 20:45 - 2021-09-21 20:45 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsraLegacy.tlb 2021-09-21 20:45 - 2021-09-21 20:45 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsraLegacy.tlb 2021-09-21 20:45 - 2021-09-21 20:45 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rendezvousSession.tlb 2021-09-21 20:45 - 2021-09-21 20:45 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rendezvousSession.tlb 2021-09-21 20:44 - 2021-09-21 20:44 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-09-21 20:44 - 2021-09-21 20:44 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-09-21 20:44 - 2021-09-21 20:44 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-09-21 20:44 - 2021-09-21 20:44 - 001393480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-09-21 20:44 - 2021-09-21 20:44 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 001313608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-09-21 20:44 - 2021-09-21 20:44 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-09-21 20:44 - 2021-09-21 20:44 - 000672768 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-09-21 20:44 - 2021-09-21 20:44 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-09-21 20:44 - 2021-09-21 20:44 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-09-21 20:44 - 2021-09-21 20:44 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-09-21 20:44 - 2021-09-21 20:44 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-09-21 20:44 - 2021-09-21 20:44 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-09-21 20:44 - 2021-09-21 20:44 - 000170496 _____ C:\WINDOWS\system32\DeviceUpdateCenterCsp.dll 2021-09-21 20:44 - 2021-09-21 20:44 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-09-21 20:44 - 2021-09-21 20:44 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx 2021-09-21 20:44 - 2021-09-21 20:44 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx 2021-09-21 20:44 - 2021-09-21 20:44 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-09-21 20:44 - 2021-09-21 20:44 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-09-21 20:44 - 2021-09-21 20:44 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-09-21 20:44 - 2021-09-21 20:44 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-09-21 20:44 - 2021-09-21 20:44 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-09-21 20:44 - 2021-09-21 20:44 - 000011355 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-09-21 20:40 - 2021-09-21 20:40 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2021-09-21 20:40 - 2021-09-21 20:40 - 000000000 ____D C:\Program Files\Reference Assemblies 2021-09-21 20:40 - 2021-09-21 20:40 - 000000000 ____D C:\Program Files\MSBuild 2021-09-21 20:40 - 2021-09-21 20:40 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-09-21 20:40 - 2021-09-21 20:40 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-09-21 20:03 - 2021-09-21 20:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2021-09-21 20:03 - 2021-09-21 20:03 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2021-09-21 20:01 - 2021-09-21 20:01 - 000000020 ___SH C:\Users\Pc\ntuser.ini 2021-09-21 19:54 - 2021-09-24 15:57 - 000004168 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{8491BED0-976D-4668-A68C-091E9A0FBA68} 2021-09-21 19:54 - 2021-09-23 17:10 - 001771836 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-09-21 19:54 - 2021-09-23 17:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-09-21 19:54 - 2021-09-21 19:54 - 000003562 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-09-21 19:54 - 2021-09-21 19:54 - 000003518 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-09-21 19:54 - 2021-09-21 19:54 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-09-21 19:54 - 2021-09-21 19:54 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-09-21 19:54 - 2021-09-21 19:54 - 000003294 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-09-21 19:54 - 2021-09-21 19:54 - 000003250 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update 2021-09-21 19:54 - 2021-09-21 19:54 - 000003220 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification 2021-09-21 19:54 - 2021-09-21 19:54 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002854 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-246948223-176472420-4045224449-1001 2021-09-21 19:54 - 2021-09-21 19:54 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-09-21 19:54 - 2021-09-21 19:54 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2021-09-21 19:54 - 2021-09-21 19:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\OfficeSoftwareProtectionPlatform 2021-09-21 19:54 - 2021-09-21 19:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-09-21 19:54 - 2021-09-21 19:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2021-09-21 19:54 - 2021-09-21 19:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG 2021-09-21 19:54 - 2021-09-21 19:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2021-09-21 19:54 - 2021-09-21 19:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple 2021-09-21 19:53 - 2021-09-21 19:54 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2021-09-21 19:53 - 2021-09-21 19:54 - 000007623 _____ C:\WINDOWS\diagerr.xml 2021-09-21 19:50 - 2021-09-24 17:24 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-09-21 19:50 - 2021-09-21 20:01 - 000000000 ____D C:\Users\Pc 2021-09-21 19:50 - 2021-09-21 19:50 - 000311752 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Voisinage réseau 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Voisinage d'impression 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Modèles 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Mes documents 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Menu Démarrer 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Documents\Mes vidéos 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Documents\Mes images 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\Documents\Ma musique 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2021-09-21 19:50 - 2021-09-21 19:50 - 000000000 _SHDL C:\Users\Pc\AppData\Local\Historique 2021-09-21 19:50 - 2019-12-07 11:10 - 000001105 _____ C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-09-21 19:02 - 2021-09-21 19:02 - 001003898 _____ C:\Users\Pc\Downloads\Wub.zip 2021-09-21 18:58 - 2021-09-21 21:36 - 000000000 ___DC C:\WINDOWS\Panther 2021-09-21 18:53 - 2021-09-21 18:53 - 004146112 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgremoverx.exe 2021-09-21 18:46 - 2021-09-21 18:46 - 001447178 _____ (Igor Pavlov) C:\Users\Pc\Downloads\7z1900-x64.exe 2021-09-21 18:42 - 2021-09-21 18:47 - 000000000 ____D C:\ESD 2021-09-21 18:40 - 2021-09-21 18:40 - 000000000 ___HD C:\$Windows.~WS 2021-09-21 17:59 - 2021-09-21 17:59 - 014056336 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Pc\Downloads\avgclear.exe 2021-09-21 16:44 - 2021-09-21 16:44 - 000042352 _____ C:\Users\Pc\Downloads\Shortcut.txt 2021-09-21 16:43 - 2021-09-21 16:44 - 000040280 _____ C:\Users\Pc\Downloads\Addition.txt 2021-09-21 16:41 - 2021-09-24 17:42 - 000000000 ____D C:\FRST 2021-09-21 16:41 - 2021-09-21 16:44 - 000059847 _____ C:\Users\Pc\Downloads\FRST.txt 2021-09-21 16:40 - 2021-09-24 17:41 - 002304512 _____ (Farbar) C:\Users\Pc\Desktop\FRST64.exe 2021-09-21 16:29 - 2021-09-24 17:38 - 000000000 ____D C:\Users\Pc\AppData\Roaming\ZHP 2021-09-21 16:29 - 2021-09-22 15:32 - 000000000 ____D C:\Users\Pc\AppData\Local\ZHP 2021-09-21 16:07 - 2021-09-23 17:01 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2021-09-21 16:03 - 2021-09-21 16:03 - 003476120 _____ (Nicolas Coolman) C:\Users\Pc\Downloads\ZHPSuite(1).exe 2021-09-21 16:01 - 2021-09-21 16:01 - 003476120 _____ (Nicolas Coolman) C:\Users\Pc\Downloads\ZHPSuite.exe 2021-09-21 15:27 - 2021-09-21 15:27 - 000000000 ____D C:\WINDOWS\pss 2021-09-19 10:37 - 2021-09-19 17:46 - 000000000 ____D C:\Users\Pc\AppData\Local\Bluestacks 2021-09-19 10:37 - 2021-09-19 10:37 - 000006869 _____ C:\Users\Pc\-1.14-windows.xml 2021-09-19 10:37 - 2021-09-19 10:37 - 000000000 ____D C:\Users\Public\BlueStacks 2021-09-19 09:57 - 2021-09-19 09:57 - 000000000 ___HD C:\$AV_AVG 2021-09-19 09:56 - 2021-09-19 09:56 - 000000000 ____D C:\Program Files\BGO Software Engineering 2021-09-16 21:31 - 2021-09-17 11:02 - 000031189 _____ C:\Users\Pc\Documents\Exposé spotify.odt 2021-09-16 18:12 - 2021-09-21 16:37 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2021-09-15 18:50 - 2021-09-15 18:50 - 000000000 ___HD C:\$WinREAgent 2021-09-10 19:03 - 2021-09-11 10:40 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-08-28 23:19 - 2021-08-28 23:35 - 000000022 _____ C:\Users\Pc\Downloads\Photos.zip 2021-08-09 21:41 - 2021-08-09 21:41 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2021-08-09 21:41 - 2021-08-09 21:41 - 000002241 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk 2021-07-31 11:41 - 2021-07-31 11:41 - 000000179 _____ C:\Users\Pc\AppData\Local\kritadisplayrc 2021-07-31 11:21 - 2021-09-21 20:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Krita 2021-07-31 11:21 - 2021-07-31 11:41 - 000019618 _____ C:\Users\Pc\AppData\Local\kritarc 2021-07-31 11:21 - 2021-07-31 11:32 - 000000000 ____D C:\Users\Pc\AppData\Roaming\krita 2021-07-31 11:21 - 2021-07-31 11:21 - 000000000 ____D C:\Users\Pc\AppData\Local\krita 2021-07-31 11:20 - 2021-07-31 11:21 - 000000000 ____D C:\Program Files\Krita (x64) 2021-07-31 11:12 - 2021-07-31 11:12 - 136871240 _____ (Krita Foundation) C:\Users\Pc\Downloads\krita-x64-4.4.5-setup.exe 2021-07-30 16:10 - 2021-07-30 16:10 - 011116724 _____ (XVM Team ) C:\Users\Pc\Downloads\xvm-8.8.1.exe 2021-07-21 17:00 - 2021-07-21 17:00 - 011119917 _____ (XVM Team ) C:\Users\Pc\Downloads\xvm-8.8.0.exe 2021-07-12 09:47 - 2021-07-12 09:47 - 000000000 ____D C:\Users\Public\Documents\AdobeInstalledCodecsTier2 2021-07-11 13:18 - 2021-07-11 13:18 - 000001382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2021-07-11 13:18 - 2021-07-11 13:18 - 000001352 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk 2021-07-07 19:48 - 2021-09-24 16:53 - 000000000 ____D C:\Users\Pc\AppData\Local\cache 2021-07-06 18:00 - 2021-07-23 19:17 - 000000031 _____ C:\Users\Pc\Desktop\Nouveau document texte.txt 2021-07-02 17:33 - 2021-07-02 17:33 - 000076862 _____ C:\Users\Pc\Desktop\Checkout – Healy – Frequencies for your life – SHOP.htm 2021-07-02 17:33 - 2021-07-02 17:33 - 000000000 ____D C:\Users\Pc\Desktop\Checkout – Healy – Frequencies for your life – SHOP_fichiers 2021-07-01 15:42 - 2021-07-01 15:42 - 011050214 _____ (XVM Team ) C:\Users\Pc\Downloads\xvm-8.7.9.exe 2021-06-30 21:07 - 2021-06-30 21:07 - 000000000 ____D C:\Users\Pc\Documents\Enregistrements audio 2021-06-30 10:01 - 2021-06-30 10:01 - 004755656 _____ (Wargaming.net ) C:\Users\Pc\Downloads\wargaming_game_center_install_eu_ccgsmps870i0.exe 2021-06-28 16:20 - 2021-09-21 19:51 - 000000000 ____D C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder 2021-06-28 16:19 - 2021-06-28 16:19 - 010510184 _____ (Gaijin Network ) C:\Users\Pc\Downloads\wt_launcher_1.0.3.281-5rhhi4ig6.exe 2021-06-28 16:13 - 2021-07-11 16:36 - 000000000 ____D C:\Users\Pc\Documents\Formation photo 2021-06-28 16:13 - 2021-06-28 16:13 - 000294580 _____ C:\Users\Pc\Desktop\JCPieri Formation.htm 2021-06-28 16:13 - 2021-06-28 16:13 - 000000000 ____D C:\Users\Pc\Desktop\JCPieri Formation_fichiers 2021-06-27 12:52 - 2021-09-21 19:51 - 000000000 ____D C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net 2021-06-27 12:51 - 2021-06-27 12:51 - 006481120 _____ (Wargaming.net ) C:\Users\Pc\Downloads\world_of_tanks_install_na_cceccwzpd12d.exe 2021-06-27 11:45 - 2021-06-27 13:16 - 000000000 ___RD C:\Users\Pc\Creative Cloud Files enzovillepontoux@gmail.com 0c58cd61eccde8d3b9534de008645961497a84f3aeb7ff2dcbbc73720a823bff ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-09-24 17:40 - 2020-12-11 16:15 - 000000000 ____D C:\Program Files (x86)\Google 2021-09-24 17:32 - 2020-12-11 16:09 - 000000000 ____D C:\ProgramData\Mozilla 2021-09-24 17:31 - 2020-12-11 16:13 - 000000000 ____D C:\Users\Pc\AppData\LocalLow\Mozilla 2021-09-24 17:30 - 2020-12-25 13:17 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2021-09-24 17:06 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-09-24 16:53 - 2020-12-28 00:20 - 000000000 ____D C:\Users\Pc\Downloads\Telegram Desktop 2021-09-24 16:53 - 2020-12-25 19:50 - 000001023 _____ C:\Users\Pc\Desktop\Telegram.lnk 2021-09-24 16:53 - 2020-12-25 19:50 - 000000000 ____D C:\Users\Pc\AppData\Roaming\Telegram Desktop 2021-09-24 15:57 - 2020-12-16 18:03 - 000000000 ____D C:\ProgramData\NVIDIA 2021-09-23 18:16 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-09-23 18:16 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-09-23 18:04 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-09-23 17:10 - 2019-12-07 16:50 - 000791726 _____ C:\WINDOWS\system32\perfh00C.dat 2021-09-23 17:10 - 2019-12-07 16:50 - 000149892 _____ C:\WINDOWS\system32\perfc00C.dat 2021-09-23 17:04 - 2021-03-13 12:26 - 000008192 ___SH C:\DumpStack.log.tmp 2021-09-23 17:04 - 2020-12-11 16:13 - 000000000 ____D C:\ProgramData\AVG 2021-09-23 17:03 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-09-23 13:53 - 2020-12-16 18:14 - 000000000 ____D C:\Users\Pc\AppData\Local\D3DSCache 2021-09-22 19:03 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-09-22 15:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat 2021-09-21 21:36 - 2020-12-26 14:20 - 000000000 ____D C:\Users\Pc\AppData\Local\CrashDumps 2021-09-21 21:32 - 2021-02-12 21:55 - 000000000 ____D C:\Users\Pc\AppData\Local\Discord 2021-09-21 21:32 - 2021-01-08 21:56 - 000000000 ____D C:\Users\Pc\AppData\Roaming\discord 2021-09-21 21:31 - 2020-12-11 16:12 - 000000000 ____D C:\ProgramData\Apple Computer 2021-09-21 21:27 - 2020-12-11 16:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-09-21 20:49 - 2021-04-23 21:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e2eSoft iVCam 2021-09-21 20:49 - 2020-12-26 14:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2021-09-21 20:49 - 2020-12-16 18:13 - 000000000 ____D C:\Program Files\UNP 2021-09-21 20:49 - 2020-12-16 18:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2021-09-21 20:49 - 2020-12-16 18:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2021-09-21 20:49 - 2020-12-11 16:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2021-09-21 20:49 - 2020-12-11 16:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2021-09-21 20:49 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup 2021-09-21 20:49 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 __RHD C:\Users\Public\Libraries 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate 2021-09-21 20:49 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-09-21 20:49 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2021-09-21 20:48 - 2021-01-28 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie 2021-09-21 20:48 - 2021-01-01 20:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire 2021-09-21 20:48 - 2020-12-11 16:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Français) 2021-09-21 20:46 - 2019-12-07 16:53 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2021-09-21 20:46 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-09-21 20:46 - 2019-12-07 16:51 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-09-21 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-09-21 20:46 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2021-09-21 20:40 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2021-09-21 20:40 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2021-09-21 20:18 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-09-21 20:13 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy 2021-09-21 20:02 - 2020-12-11 16:06 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-09-21 20:02 - 2020-12-11 16:06 - 000000000 ___RD C:\Users\Pc\3D Objects 2021-09-21 20:02 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-09-21 20:01 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-09-21 19:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-09-21 19:54 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT 2021-09-21 19:54 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-09-21 19:54 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-09-21 19:53 - 2020-12-11 16:15 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-09-21 19:53 - 2020-12-11 16:15 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-09-21 19:52 - 2019-12-07 11:14 - 000000000 __RSD C:\WINDOWS\Media 2021-09-21 19:51 - 2021-06-05 11:49 - 000000000 ____D C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2021-09-21 19:51 - 2021-02-28 11:49 - 000000000 ___SD C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.9 2021-09-21 19:51 - 2021-01-02 19:19 - 000000000 ____D C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-09-21 19:51 - 2020-12-25 19:50 - 000000000 ____D C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop 2021-09-21 19:51 - 2020-12-11 16:06 - 000000000 ____D C:\Users\Pc\AppData\Local\Packages 2021-09-21 19:50 - 2020-12-16 18:05 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-09-21 19:50 - 2020-12-11 16:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2021-09-21 19:06 - 2020-12-11 23:11 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-09-21 18:54 - 2020-12-11 16:13 - 000000000 ____D C:\Program Files\AVG 2021-09-21 18:23 - 2021-06-05 11:49 - 000000000 ____D C:\Users\Pc\AppData\Roaming\WhatsApp 2021-09-21 18:20 - 2021-06-05 11:49 - 000000000 ____D C:\Users\Pc\AppData\Local\WhatsApp 2021-09-21 16:37 - 2020-12-27 10:32 - 000001278 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2021-09-18 23:27 - 2020-12-16 18:01 - 000000000 ____D C:\Users\Pc\AppData\Roaming\SoftGrid Client 2021-09-17 10:44 - 2020-12-11 16:12 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-09-16 14:55 - 2021-01-14 20:05 - 000036120 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe 2021-09-15 18:50 - 2020-12-11 16:27 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-09-15 18:48 - 2020-12-11 16:27 - 135637312 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-09-11 10:39 - 2020-12-16 18:12 - 000000000 ____D C:\Program Files (x86)\Steam 2021-09-11 10:19 - 2020-12-11 16:09 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-09-09 14:31 - 2020-12-11 16:29 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-08-29 22:07 - 2020-12-26 14:41 - 000000000 ____D C:\Users\Pc\AppData\Roaming\obs-studio ==================== Fichiers à la racine de certains dossiers ======== 2021-07-31 11:21 - 2021-07-31 11:38 - 000003786 _____ () C:\Users\Pc\AppData\Local\krita-sysinfo.log 2021-07-31 11:21 - 2021-07-31 11:41 - 000002126 _____ () C:\Users\Pc\AppData\Local\krita.log 2021-07-31 11:41 - 2021-07-31 11:41 - 000000179 _____ () C:\Users\Pc\AppData\Local\kritadisplayrc 2021-07-31 11:21 - 2021-07-31 11:41 - 000019618 _____ () C:\Users\Pc\AppData\Local\kritarc 2020-12-25 13:26 - 2020-12-25 13:26 - 000000000 _____ () C:\Users\Pc\AppData\Local\oobelibMkey.log 2021-05-01 23:32 - 2021-05-01 23:32 - 000007597 _____ () C:\Users\Pc\AppData\Local\Resmon.ResmonCfg ==================== SigCheckExt ========================= 2021-09-21 16:40 - 2021-09-24 17:41 - 002304512 _____ (Farbar) C:\Users\Pc\Desktop\FRST64.exe 2021-09-21 18:46 - 2021-09-21 18:46 - 001447178 _____ (Igor Pavlov) C:\Users\Pc\Downloads\7z1900-x64.exe 2021-01-08 22:09 - 2021-01-08 22:09 - 114225678 _____ (Ottomated) C:\Users\Pc\Downloads\CrewLink-Setup-1.2.1.exe 2021-05-01 19:41 - 2021-05-01 19:41 - 009864657 _____ (XVM Team ) C:\Users\Pc\Downloads\xvm-8.7.8.exe 2021-07-01 15:42 - 2021-07-01 15:42 - 011050214 _____ (XVM Team ) C:\Users\Pc\Downloads\xvm-8.7.9.exe 2021-07-21 17:00 - 2021-07-21 17:00 - 011119917 _____ (XVM Team ) C:\Users\Pc\Downloads\xvm-8.8.0.exe 2021-07-30 16:10 - 2021-07-30 16:10 - 011116724 _____ (XVM Team ) C:\Users\Pc\Downloads\xvm-8.8.1.exe 2021-09-22 15:32 - 2021-09-22 15:32 - 003289752 _____ (Nicolas Coolman) C:\Users\Pc\Downloads\ZHPCleaner.exe 2021-09-21 16:03 - 2021-09-21 16:03 - 003476120 _____ (Nicolas Coolman) C:\Users\Pc\Downloads\ZHPSuite(1).exe 2021-09-21 16:01 - 2021-09-21 16:01 - 003476120 _____ (Nicolas Coolman) C:\Users\Pc\Downloads\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {f66c6617-3bf4-11eb-bbf0-fa9393138933} {f66c6616-3bf4-11eb-bbf0-fa9393138933} {724b6342-feb1-11eb-92a4-d45d64a8df3a} {724b6343-feb1-11eb-92a4-d45d64a8df3a} {724b6344-feb1-11eb-92a4-d45d64a8df3a} timeout 1 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {ae111c40-1b0c-11ec-8428-e420afebef1d} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {724b6342-feb1-11eb-92a4-d45d64a8df3a} description UEFI:CD/DVD Drive Application logicielle (101fffff) -------------------------------- identificateur {724b6343-feb1-11eb-92a4-d45d64a8df3a} description UEFI:Removable Device Application logicielle (101fffff) -------------------------------- identificateur {724b6344-feb1-11eb-92a4-d45d64a8df3a} description UEFI:Network Device Application logicielle (101fffff) -------------------------------- identificateur {f66c6616-3bf4-11eb-bbf0-fa9393138933} description UEFI: PXE IP4 Intel(R) Ethernet Connection (7) I219-V Application logicielle (101fffff) -------------------------------- identificateur {f66c6617-3bf4-11eb-bbf0-fa9393138933} description UEFI: PXE IP6 Intel(R) Ethernet Connection (7) I219-V Installation de Windows ----------------------- identificateur {7254a080-1510-4e85-ac0f-e7fb3d444736} device ramdisk=[C:]\$WINDOWS.~BT\Sources\SafeOS\winre.wim,{f66c6623-3bf4-11eb-bbf0-fa9393138933} bootstatdevice partition=C: custom:11000083 partition=C: path \windows\system32\winload.efi description Windows Rollback locale fr-FR bootstatfilepath \$WINDOWS.~BT\Sources\SafeOS\bootstat.dat inherit {bootloadersettings} restartonfailure Yes osdevice ramdisk=[C:]\$WINDOWS.~BT\Sources\SafeOS\winre.wim,{f66c6623-3bf4-11eb-bbf0-fa9393138933} custom:21000152 partition=C: systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {ae111c42-1b0c-11ec-8428-e420afebef1d} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {ae111c40-1b0c-11ec-8428-e420afebef1d} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {ae111c42-1b0c-11ec-8428-e420afebef1d} device ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{ae111c43-1b0c-11ec-8428-e420afebef1d} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{ae111c43-1b0c-11ec-8428-e420afebef1d} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {f66c6621-3bf4-11eb-bbf0-fa9393138933} device ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{f66c6622-3bf4-11eb-bbf0-fa9393138933} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume1]\Recovery\WindowsRE\Winre.wim,{f66c6622-3bf4-11eb-bbf0-fa9393138933} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {ae111c40-1b0c-11ec-8428-e420afebef1d} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {ae111c42-1b0c-11ec-8428-e420afebef1d} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {f66c661e-3bf4-11eb-bbf0-fa9393138933} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {f66c6621-3bf4-11eb-bbf0-fa9393138933} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {ae111c43-1b0c-11ec-8428-e420afebef1d} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume1 ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {f66c6622-3bf4-11eb-bbf0-fa9393138933} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume1 ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {f66c6623-3bf4-11eb-bbf0-fa9393138933} description Windows Setup ramdisksdidevice partition=C: ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi ==================== Fin de FRST.txt ========================